Vulnerabilities > CVE-2020-14224 - Out-of-bounds Write vulnerability in Hcltech Notes 9.0/9.0.1

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
hcltech
CWE-787
critical

Summary

A vulnerability in the MIME message handling of the HCL Notes v9 client could potentially be exploited by an unauthenticated attacker resulting in a stack buffer overflow. This could allow a remote attacker to crash the Notes application or inject code into the system which would execute with the privileges of the currently logged-in user.

Vulnerable Configurations

Part Description Count
Application
Hcltech
2

Common Weakness Enumeration (CWE)